By Staff harlan4096 Security Config 2024

Last updated
May 26, 2024
How it's used?
For home and private use
Operating system
Windows 11
Other operating system
Linux Mint in VMWare Pro :)
On-device encryption
VeraCrypt
Log-in security
    • Biometrics (Windows Hello PIN, TouchID, Face, Iris, Fingerprint)
Security updates
Allow security updates
Update channels
Allow stable updates only
User Access Control
Always notify
Smart App Control
Off
Network firewall
Enabled
About WiFi router
ZYXEL EX3301 (ISP router)
Real-time security
  • Kaspersky Endpoint Security 12.5
  • KeyScrambler Free
  • SandBoxie Classic
Firewall security
Other - Internet Security (3rd-party)
About custom security
  • Windows 11 Core Isolation disabled: using AMD Hardware Virtualization enabled in VMWare
  • Host Intrusion Prevention: Trust group for applications that could not be added to existing groups -> UnTrusted
  • Host Intrusion Prevention: Trust group for applications started before Kaspersky Endpoint Security -> UnTrusted
  • Host Intrusion Prevention: Trust digitally signed applications -> Disabled
  • Host Intrusion Prevention: Manage Resources: my C:\User\<account> protected with special strong rights
  • Treat port scanning and network flooding as attacks -> Enabled
  • MAC Spoofing Protection -> Enabled
Periodic malware scanners
  • AdwCleaner
  • NPE
  • EEK
  • HitManPro
  • McAfee Stinger
  • ESET Online Scanner
Malware sample testing
I do participate in malware testing. See details about my testing environment below.
Environment for malware testing
VMWare Pro with 3 virtual machines: Kaspersky Premium 21.17, Kaspersky Endpoint Security 12.5, Linux Mint
Browser(s) and extensions
I have 6 browsers installed: Mozilla FireFox, LibreWolf, Opera, Brave, Chrome and of course Edge (🤢)

But my main daily is Mozilla FireFox (using DuckDuckGo URL as main page for searching), with add-ons:
  • uBlock Origin
  • NetCraft
  • WebRTC Leak Protection
  • DarkReader
  • Simple Translate
  • Language Tool

Temporally trying:
  • DuckDuckGo Privacy Essentials
  • JShelter
In the rest of browsers, I have, at least, uBlock Origin add-on installed.
Secure DNS
DNS over HTTPS ciphered Mullvad DNS IP4/IP6
Desktop VPN
  • Kaspersky VPN Unlimited
  • WindScribe (10GB monthly)
Password manager
KeePassXC (offline)
Maintenance tools
  • WPD to stop unnecessary Windows services and Telemetry.
  • CrystalDiskInfo
  • CrystalDiskMark
  • HWMonitor
  • QuickCPU
  • FastCopy
  • Free Download Manager
  • AnyDesk (paid subscription, I need it for my working)
File and Photo backup
MegaSync app + Mega Pro Lite (400GB)
Subscriptions
    • None
System recovery
  • Macrium Reflect Home (paid)
  • Hasleo backUp Suite (free for now)
Weekly cloning both images to external hard drive.
Risk factors
    • Browsing to popular websites
    • Working from home
    • Opening email attachments
    • Buying from online stores, entering banks card details
    • Logging into my bank account
    • Downloading software and files from unknown / untrusted / shady sites
    • Requesting and accepting remote access
    • Streaming audio/video content from trusted sites or paid subscriptions
    • Streaming audio/video content from shady sites
Computer specs
Notable changes
  • 27/05/2024: Removed RogueKiller in Periodic scanners, added ESET Online Scanner
  • 27/05/2024: Removed 9.9.9.9 in Secure DNS, added DNS0.EU
  • 31/05/2024: Added DuckDuckGo as main seeker in all browsers, also added DDG Essentials add-on
  • 01/06/2024: Changed Windows 11 Secure DNS and DNSoHTTPS to ciphered Mullvad DNS IP4/IP6
What I'm looking for?

Looking for medium feedback.

TairikuOkami

Level 37
Verified
Top Poster
Content Creator
Well-known
May 13, 2017
2,617
Hum no, but I don't use "Simple Translate" add-on to translate full pages, but to select specific text from a site and get a translation popup, so it's very direct, easy and fast.
Copied. Thanks, now my MS profile picture is ruined, I though that it was coffee. 😩

capture_05282024_135804.jpg
 

rashmi

Level 11
Jan 15, 2024
500
Home products are quite bloated. Kaspersky used to be different. I like KSOS and KES better, precisely because they are frills-free. No slowdowns, no unnecessary features.
Kaspersky excels in terms of protection. A modular installer like Avast would make a big difference, providing a cleaner and easier-to-manage interface.
 

harlan4096

Super Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,855
KES has in part a modular installer, and for home products it was in the past, but they removed because They changed completely the internal architecture of the product, many modules are tied and share information.
 
  • Like
Reactions: Berny and rashmi

rashmi

Level 11
Jan 15, 2024
500
Yes, I have used KES and liked it. The old edition, Kaspersky Total, had Kaspersky Safe Kids. None of the new editions come with KSK. The premium edition includes KSK, but it's an introductory offer. Correct?
 
  • Like
Reactions: harlan4096

rashmi

Level 11
Jan 15, 2024
500
Sorry, I think KSK only for 1 year.
Yes, the product and buy page doesn't mention it, but the comparison chart shows "Limited Offer - KSK Subs Free."

I use Kaspersky Standard on kids' systems, and I disable some features and options. My customized Kaspersky Standard is equivalent to Kaspersky Free. I know Kaspersky Free doesn't have the Application Control module. Does KF show ads?
 

harlan4096

Super Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,855
I'm not sure, never had it installed (or can't remember), always paid products, but I guess and probably users will get some notifications...
 
  • Like
Reactions: Berny and rashmi

rashmi

Level 11
Jan 15, 2024
500
Are you using the free or premium plan for Language Tool? How impressive is it? Have you experimented with any other grammar-checking tools?
 
  • Like
Reactions: harlan4096

harlan4096

Super Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,855
I'm using Free hehe... I like it because it forces me to write in the right manner in English and also in my own lang. (Spanish), sometimes I even find it very picky 😁
 

Szellem

Level 7
Verified
Well-known
Apr 15, 2020
339
Well, I've radically changed my main security setup, just changed Kaspersky Premium to Kaspersky Endpoint Security, that comes with some additional and interesting security features. A

Although I can't access to all the power of KES, if it is not managed by a console (probably will implement later), still will improve my security compared to KPremium.
After a few days, what is your experience with KES?
Compared to the Home editions? Performance, etc?
 
  • Like
Reactions: harlan4096

harlan4096

Super Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,855
I'm quite happy with it, very low in RAM resources, usually less than 200MB, also because it has a special KSN Clod mode that uses less RAM:

1717229163403.png


With Extended KSN mode, You can check in KSN every type of file (via right mouse click), and not only "executable files" like in home products.

Apart from that, no Kaspersky Protection add-ons in browsers, and script injection comes disabled by default, because in this case, only needed if You enable Web Control module (to block Websites, better for managed busssines environments), not the Web Threat Protection / Safe Browsing (Web Anti-Virus module):

1717229313222.png


It also comes with Anti-Spoof control:



1717229590103.png
 
Last edited:

harlan4096

Super Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,855
1717229691193.png


The modules in gray are deactivated, and those with the other symbol mean that this license does not support them. Still, Adaptive Anomaly Control and BadUSB Attack Prevention, can be enabled.
 

Szellem

Level 7
Verified
Well-known
Apr 15, 2020
339
View attachment 283574

The modules in gray are deactivated, and those with the other symbol mean that this license does not support them. Still, Adaptive Anomaly Control and BadUSB Attack Prevention, can be enabled.
Thank you for your reply!
Can you help me how I can try Kaspersky Premium for 30 days without giving my credit card details? It would be nice to have a license key for a 30 day trial.
 

harlan4096

Super Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,855
Can you help me how I can try Kaspersky Premium for 30 days without giving my credit card details? It would be nice to have a license key for a 30 day trial.

For 30 days trial will be probably impossible now, I think they changed that behavior.

But for paying: just found a deal of KPremium (outside K. official site), that works in your country region, buy it, then download KPremium installer, activate with Your license code and done.
 

harlan4096

Super Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,855
In theory, the av engine it's the same, in fact, the beta testing of home and corporate products is running in parallel and new beta builds are published at the same time for both.

But probably in KES there are some settings hardened internally compared to home products, Also the possibility of use an extended mode of KSN.

There are also some changes in Application Control / Intrusion Prevention / FireWall modules, in KES there is no Interactive Mode / Prompts, for any module indeed!.

Some examples

1717397950059.png1717398021203.png
 
  • Like
Reactions: Berny and Szellem

Szellem

Level 7
Verified
Well-known
Apr 15, 2020
339
In theory, the av engine it's the same, in fact, the beta testing of home and corporate products is running in parallel and new beta builds are published at the same time for both.

But probably in KES there are some settings hardened internally compared to home products, Also the possibility of use an extended mode of KSN.

There are also some changes in Application Control / Intrusion Prevention / FireWall modules, in KES there is no Interactive Mode / Prompts, for any module indeed!.

Some examples

View attachment 283622View attachment 283623
And how do you feel about the system impact?I feel that it makes the machine faster.
 
  • Like
Reactions: harlan4096

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top